DSH Penetration Testing Mode
howmp/dsh-pentest · skills
Penetration Testing Patterns for DeepSeek Harness (dsh) @CloverSecLabs
★ 398GitHub stars
25Forks
2026-08-24Last updated
JavaScriptLanguage
—License
Key features
- finding required reproducibleSteps (at least one).
- DatabasePentest records are written to $DSH_HOME/storages/pentest-sessions.db (sqlite, routed via bundle patch).
- Deterministic ids (store.ts)Node/edge ids are - (counted by session, reset to zero after goal reset) - Tool returns id for model reference across calls, session projection purely replays the same graph from logs.
- Can be associated with impact assets) / pentest_add_asset (optional parentId, empty string is considered the root asset) / pentest_state / pentest_graph / pentest_report.
- Web tab page (src/dsh-client-ui-pentest): Register by session (the current session or list ancestor chain containing pentest will be displayed by default, and non-penetrating sessions will be hidden)
Install command
dsh plugin --profile web add github:howmp/dsh-pentest